DetectorFeatureArgs

data class DetectorFeatureArgs(val additionalConfigurations: Output<List<DetectorFeatureAdditionalConfigurationArgs>>? = null, val detectorId: Output<String>? = null, val name: Output<String>? = null, val status: Output<String>? = null) : ConvertibleToJava<DetectorFeatureArgs>

Provides a resource to manage a single Amazon GuardDuty detector feature.

NOTE: Deleting this resource does not disable the detector feature, the resource in simply removed from state instead.

Example Usage

import * as pulumi from "@pulumi/pulumi";
import * as aws from "@pulumi/aws";
const example = new aws.guardduty.Detector("example", {enable: true});
const eksRuntimeMonitoring = new aws.guardduty.DetectorFeature("eks_runtime_monitoring", {
detectorId: example.id,
name: "EKS_RUNTIME_MONITORING",
status: "ENABLED",
additionalConfigurations: [{
name: "EKS_ADDON_MANAGEMENT",
status: "ENABLED",
}],
});
import pulumi
import pulumi_aws as aws
example = aws.guardduty.Detector("example", enable=True)
eks_runtime_monitoring = aws.guardduty.DetectorFeature("eks_runtime_monitoring",
detector_id=example.id,
name="EKS_RUNTIME_MONITORING",
status="ENABLED",
additional_configurations=[{
"name": "EKS_ADDON_MANAGEMENT",
"status": "ENABLED",
}])
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Aws = Pulumi.Aws;
return await Deployment.RunAsync(() =>
{
var example = new Aws.GuardDuty.Detector("example", new()
{
Enable = true,
});
var eksRuntimeMonitoring = new Aws.GuardDuty.DetectorFeature("eks_runtime_monitoring", new()
{
DetectorId = example.Id,
Name = "EKS_RUNTIME_MONITORING",
Status = "ENABLED",
AdditionalConfigurations = new[]
{
new Aws.GuardDuty.Inputs.DetectorFeatureAdditionalConfigurationArgs
{
Name = "EKS_ADDON_MANAGEMENT",
Status = "ENABLED",
},
},
});
});
package main
import (
"github.com/pulumi/pulumi-aws/sdk/v6/go/aws/guardduty"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
example, err := guardduty.NewDetector(ctx, "example", &guardduty.DetectorArgs{
Enable: pulumi.Bool(true),
})
if err != nil {
return err
}
_, err = guardduty.NewDetectorFeature(ctx, "eks_runtime_monitoring", &guardduty.DetectorFeatureArgs{
DetectorId: example.ID(),
Name: pulumi.String("EKS_RUNTIME_MONITORING"),
Status: pulumi.String("ENABLED"),
AdditionalConfigurations: guardduty.DetectorFeatureAdditionalConfigurationArray{
&guardduty.DetectorFeatureAdditionalConfigurationArgs{
Name: pulumi.String("EKS_ADDON_MANAGEMENT"),
Status: pulumi.String("ENABLED"),
},
},
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.aws.guardduty.Detector;
import com.pulumi.aws.guardduty.DetectorArgs;
import com.pulumi.aws.guardduty.DetectorFeature;
import com.pulumi.aws.guardduty.DetectorFeatureArgs;
import com.pulumi.aws.guardduty.inputs.DetectorFeatureAdditionalConfigurationArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new Detector("example", DetectorArgs.builder()
.enable(true)
.build());
var eksRuntimeMonitoring = new DetectorFeature("eksRuntimeMonitoring", DetectorFeatureArgs.builder()
.detectorId(example.id())
.name("EKS_RUNTIME_MONITORING")
.status("ENABLED")
.additionalConfigurations(DetectorFeatureAdditionalConfigurationArgs.builder()
.name("EKS_ADDON_MANAGEMENT")
.status("ENABLED")
.build())
.build());
}
}
resources:
example:
type: aws:guardduty:Detector
properties:
enable: true
eksRuntimeMonitoring:
type: aws:guardduty:DetectorFeature
name: eks_runtime_monitoring
properties:
detectorId: ${example.id}
name: EKS_RUNTIME_MONITORING
status: ENABLED
additionalConfigurations:
- name: EKS_ADDON_MANAGEMENT
status: ENABLED

Constructors

Link copied to clipboard
constructor(additionalConfigurations: Output<List<DetectorFeatureAdditionalConfigurationArgs>>? = null, detectorId: Output<String>? = null, name: Output<String>? = null, status: Output<String>? = null)

Properties

Link copied to clipboard

Additional feature configuration block for featuresEKS_RUNTIME_MONITORING or RUNTIME_MONITORING. See below.

Link copied to clipboard
val detectorId: Output<String>? = null

Amazon GuardDuty detector ID.

Link copied to clipboard
val name: Output<String>? = null

The name of the detector feature. Valid values: S3_DATA_EVENTS, EKS_AUDIT_LOGS, EBS_MALWARE_PROTECTION, RDS_LOGIN_EVENTS, EKS_RUNTIME_MONITORING, LAMBDA_NETWORK_LOGS, RUNTIME_MONITORING. Only one of two features EKS_RUNTIME_MONITORING or RUNTIME_MONITORING can be added, adding both features will cause an error. Refer to the AWS Documentation for the current list of supported values.

Link copied to clipboard
val status: Output<String>? = null

The status of the detector feature. Valid values: ENABLED, DISABLED.

Functions

Link copied to clipboard
open override fun toJava(): DetectorFeatureArgs